npshwoori64.dll

shahai woori Password Plugin

Chongqing Shahai Information Tech Co.,Ltd

It is installed within the Mozilla Firefox web browser as an extension/plugin as ‘shahai Password Plugin’.
Publisher:
shahaiinfo  (signed by Chongqing Shahai Information Tech Co.,Ltd)

Product:
shahai woori Password Plugin

Version:
10.0.0.30

MD5:
2275d1b03558d72cd98f7c09d049b821

SHA-1:
115f9a748b0261fd1acf832397129764306f5ba3

SHA-256:
466352a9ef44231ac0d88325a63a35a86c0ff8b586b82b3b53e7a134e932f037

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:21:02 PM UTC  (today)

File size:
554 KB (567,272 bytes)

Product version:
10.0.0.30

Copyright:
shahaiinfo. All rights reserved.

Original file name:
shhanabank.dll

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\windows\syswow64\shahai\npshwoori64.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/12/2012 8:00:00 AM

Valid to:
6/12/2013 7:59:59 AM

Subject:
CN="Chongqing Shahai Information Tech Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Chongqing Shahai Information Tech Co.,Ltd", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
313648FD9FEF848C2C3F4C6387B94AAF

Registration
CLSID:
{E1E80600-0152-4593-AB1C-88B80A2CAC09}

ProgID:
ATL2.MyEditBox.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
11/22/2012 2:44:09 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:pdHmMSIPhpMpUijQoZq4TLWz6ZXiZd3qnu8Q1L:39SIPvMpDjQo7LTZXiZd3+u8Qt

Entry address:
0x1B510

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 83, FA, 01, 49, 8B, F8, 8B, DA, 48, 8B, F1, 75, 05, E8, AF, 9E, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 83, FE, FF, FF, CC, CC, CC, 48, 89, 5C, 24, 10, 48, 89, 74, 24, 18, 48, 89, 7C, 24, 20, 41, 54, 48, 83, EC, 50, 4D, 85, C9, 49, 8B, F1, 49, 8B, D8, 4C, 8B, E2, 48, 8B, F9, 75, 11, 48, 85, C9, 75, 11, 48, 85, D2, 75, 27, 33, C0, E9, 1C, 02, 00, 00, 48, 85, C9, 74, 1B, 48, 85, D2, 74...
 
[+]

Entropy:
6.3289

Code size:
327 KB (334,848 bytes)

Mozilla Plugin
Name:
shahai Password Plugin


Scan npshwoori64.dll - Powered by Reason Core Security